Forum Discussion
GaryB_Reply
Sep 27, 2022Copper Contributor
Best Practice to handle duplicate SIEM log entries from MDCA and MDI
I'm looking to understand the best practice for handling potential duplicate SIEM log entries with MDI and MDCA enabled. The MDCA documentation MDCA SIEM Integration suggests that duplicate entri...
- Sep 27, 2022I can speak for the Sentinel side - yes, Sentinel has capability built-in to manage potential duplicate alerts. Plus, the Defender alerts are free for Sentinel customers.
Rod_Trent
Microsoft
Sep 27, 2022I can speak for the Sentinel side - yes, Sentinel has capability built-in to manage potential duplicate alerts. Plus, the Defender alerts are free for Sentinel customers.